Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > linux.kernel > #1359368
| From | Andy Lutomirski <luto@kernel.org> |
|---|---|
| Newsgroups | linux.kernel |
| Subject | [PATCH v4 0/3] Xen iopl fixes |
| Date | 2016-03-16 22:20 +0100 |
| Message-ID | <rdr1f-6av-3@gated-at.bofh.it> (permalink) |
| Organization | linux.* mail to news gateway |
Hi all- For those who are seeing this for the first time: any 64-bit Xen PV domain with IO port access privileges (in practice, this means dom0 AFAIK) and any user programs that use iopl(3) (various old X drivers, presumably) is probably vulnerable to privilege escalations by unprivileged programs running in the same PV domain. There's a long public description of the issue here: http://xenbits.xen.org/xsa/advisory-171.html Changes from v3: - Add Jan's R-b. - No longer embargoed Changes from v2: Pretend v2 never happened... Changes from v1: Use xen/hypervisor.h instead of xen-ops.h (Jan) Andy Lutomirski (3): selftests/x86: Add a iopl test x86/iopl/64: Properly context-switch IOPL on Xen PV x86/iopl: Fix iopl capability check on Xen PV arch/x86/include/asm/xen/hypervisor.h | 2 + arch/x86/kernel/ioport.c | 12 ++- arch/x86/kernel/process_64.c | 12 +++ arch/x86/xen/enlighten.c | 2 +- tools/testing/selftests/x86/Makefile | 2 +- tools/testing/selftests/x86/iopl.c | 135 ++++++++++++++++++++++++++++++++++ 6 files changed, 160 insertions(+), 5 deletions(-) create mode 100644 tools/testing/selftests/x86/iopl.c -- 2.5.0
Back to linux.kernel | Previous | Next — Next in thread | Find similar | Unroll thread
[PATCH v4 0/3] Xen iopl fixes Andy Lutomirski <luto@kernel.org> - 2016-03-16 22:20 +0100
[PATCH v4 1/3] selftests/x86: Add a iopl test Andy Lutomirski <luto@kernel.org> - 2016-03-16 22:20 +0100
[tip:x86/urgent] selftests/x86: Add an iopl test tip-bot for Andy Lutomirski <tipbot@zytor.com> - 2016-03-17 10:30 +0100
csiph-web